Program DPO Forum Luxembourg February 2025

Coffee and welcome breakfast

Tine A. Larsen - President of CNPD

Chapter one: Historical evolution of GDPR in commercial companies Chapter two: European regulatory responses on AI and GDPR ¨ Chapter three: Use Case - financial industry Chapter four: Lessons learned Chapter five: Conclusion

Michael Hofmann - President of APDL

How do you approach the IA Act as a DPO? The forthcoming implementation of the European Artificial Intelligence Act (AI Act) is likely to revolutionize the role of Data Protection Officers. Traditionally confronted with the governance of personal data, they will now have to find their place within the governance of artificial intelligence. This session will provide an overview of what the AI Act implies for a DPO, and how it is concretely possible to reconcile RGPD and AI Act management.

Paul-Emmanuel Bidault - CEO - DASTRA

See the conference 

NIS2: The missing link for your business! Many organizations still don't know what they need to be NIS2 compliant. At this conference, we'll get straight to the point: discover the really useful tools and strategies for closing these gaps. Take advantage of this directive to go beyond compliance, strengthen your defenses and create powerful synergies with RGPD, DORA and other legislation. A practical and strategic meeting to transform cybersecurity into a performance driver.

Julien Winkin - Managing Partner - LUXGAP 

See the conference

Although the RGPD has been in place for several years, misunderstandings persist, both on the role of the DPO and
on the obligations of the data controller. This session highlights some major challenges: late involvement
DPOs, inadequate DPIA management, obtaining management approval, etc. Concrete solutions will be
to clarify responsibilities, strengthen management support and improve collaboration between all parties.
for effective compliance.

Mélanie Gagnon - CEO and Founder - MGSI 

See the conference

How to tackle the twin issues of the AI Act and compliance with the RGPD in a world where the speed of developments in artificial intelligence is creating a yawning gap between the use of massive data and regulatory constraints. How to deal with requests for deletion or guarantee safer segmentation of data.

Nassoy Stéphane - DPO and Cloud architect - LUSIS 

See the conference

Discover the impact of generative AI on business.
Analyze safety and compliance risks.
Examine opportunities for operational optimization.
Take a pragmatic approach to integrating these technologies.
Take part in an expert exchange to anticipate future challenges.

MUSTAPHA ANNOUH - CEO - SHIELD AI

See the conference

DPOs play a central role in maintaining compliance in the face of increasing regulatory requirements. Whether streamlining data protection processes or fostering proactive data governance, aligning data protection practices with evolving regulations ensures accountability and reinforces organizational strength. This contributes positively to reducing exposure to security and resilience risks, but requires alignment with all other control functions.
How can DPOs lead both compliance and resilience in an ever-changing regulatory landscape?
Jean-Louis Reynaert, Cyber risk management expert, Grace Connect

See the Conference

As we all know, the GDPR was implemented in order to strengthen the power of individuals over the management of their personal data. 

This can be seen from the fact that non-compliance in relation to the management of Data Subjects rights would result in the highest administrative financial fine of 4% of turnover or €20 million. 

Here we will focus on consent within the GDPR and see whether it is one of the cornerstones of personal data protection.

Aïssatou Sarr - Data Protection Officer - Member of AFCDP.

With global geopolitics facing a major shift and economic warfare being increasingly waved in cyberspace, a crucial question arises: Is your sensitive information secure? American and Chinese cloud backup, videoconferencing, collaboration and instant messaging solutions represent risks that are often ignored or underestimated. What if, tomorrow, Big Tech decided to restrict access to these solutions in the European Union, or to drastically increase their prices? This workshop explores the risks of these tools and the sovereign alternatives for protecting your assets in your communications, your internal and external exchanges.

LISO Y CLARET Robin - Senior Sales Manager - France PRIVATE DISCUSS

See the Conference

Michael Hofmann - President of APDL

The RGPD and the NIS 2 Directive are two distinct regulatory frameworks with different regulatory authorities. The NIS 2 Directive deals with information systems and business continuity, while the RGPD deals with personal data.

Data protection is all about cybersecurity. DPOs must therefore work closely with CISOs.

How can RGPD and NIS 2 be harmonized, and how can this collaboration be leveraged?

Moderator: Fabrice Hecquet - CEO, CyberXpert